8.8
CVSSv3

CVE-2020-3115

Published: 26/01/2020 Updated: 31/01/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A vulnerability in the CLI of the Cisco SD-WAN Solution vManage software could allow an authenticated, local malicious user to elevate privileges to root-level privileges on the underlying operating system. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted file to the affected system. An exploit could allow the malicious user to elevate privileges to root-level privileges.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco sd-wan_firmware 18.4.1

cisco sd-wan_firmware 19.1.0

Vendor Advisories

A vulnerability in the CLI of the Cisco SD-WAN Solution vManage software could allow an authenticated, local attacker to elevate privileges to root-level privileges on the underlying operating system The vulnerability is due to insufficient input validation An attacker could exploit this vulnerability by sending a crafted file to the affected sys ...